VYPR

Vigor2960 Firmware

by Draytek

CVEs (23)

  • CVE-2023-1009MedFeb 24, 2023
    risk 0.44cvss 6.5epss 0.16

    ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability classified as critical has been found in DrayTek Vigor 2960 1.5.1.4/1.5.1.5. Affected is the function sub_1DF14 of the file /cgi-bin/mainfunction.cgi of the component Web Management Interface. The manipulation of the argument…

  • CVE-2023-6265MedNov 22, 2023
    risk 0.42cvss 6.5epss 0.02

    ** UNSUPPORTED WHEN ASSIGNED ** Draytek Vigor2960 v1.5.1.4 and v1.5.1.5 are vulnerable to directory traversal via the mainfunction.cgi dumpSyslog 'option' parameter allowing an authenticated attacker with access to the web management interface to delete arbitrary files.…

  • CVE-2023-1163MedMar 3, 2023
    risk 0.42cvss 6.5epss 0.02

    ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability has been found in DrayTek Vigor 2960 1.5.1.4/1.5.1.5 and classified as critical. Affected by this vulnerability is the function getSyslogFile of the file mainfunction.cgi of the component Web Management Interface. The manipulation…

Page 2 of 2